Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Azure Stack Hub Demystified
  • Toc
  • feedback
Azure Stack Hub Demystified

Azure Stack Hub Demystified

By : Young
5 (5)
close
Azure Stack Hub Demystified

Azure Stack Hub Demystified

5 (5)
By: Young

Overview of this book

Azure Stack Hub is the on-premise offering from Microsoft, which provides Azure Cloud services within a customer's own data center. It provides consistent processes between on-site and the cloud, allowing developers to test locally and deploy to the cloud in exactly the same manner. Azure Stack Hub Demystified provides complete coverage of deploying, configuring, administrating, and running Microsoft Azure Stack Hub efficiently. Firstly, you will learn how to deploy Azure Stack Hub within an organization. As you progress, you'll understand configuration and the different services provided by the platform. The book also focuses on the underlying architecture and connectivity options for the modern data center. Later, you will understand various approaches to DevOps and their implementation, and learn key topics for the AZ-600 exam. By the end of this Azure book, you will have a thorough understanding of Azure Stack Hub and the services that are provided by the platform, along with the confidence and information you need to be able to pass the AZ-600 exam.
Table of Contents (21 chapters)
close
1
Section 1: Architecture and Deployment
5
Section 2: Identity and Security
9
Section 3: Features
15
Section 4: Monitoring, Licensing, and Billing

Configuring ADFS and Graph integration

By selecting ADFS as the identity provider, identities from an existing Active Directory forest are able to authenticate with resources within Azure Stack Hub. The existing Active Directory forest will need a deployment of ADFS instances to enable the creation of an ADFS federation trust.

Authentication is only one part of identity. To be able to manage RBAC in Azure Stack Hub, the Graph component must also be configured. The Graph component is used to look up the user account in the existing Active Directory forest when access to the resource is delegated. This is done using the LDAP protocol:

Figure 4.6 – The ADFS Graph topology

The existing ADFS is the account Security Token Service (STS), which sends the claims to Azure Stack Hub ADFS (that is, the resource STS). Automation in Azure Stack Hub creates the claims provider trust with the metadata endpoint for the existing ADFS.

A relying party trust must...

bookmark search playlist font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete